{"id":9587,"date":"2022-11-04T05:43:51","date_gmt":"2022-11-04T05:43:51","guid":{"rendered":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/"},"modified":"2023-04-18T06:26:02","modified_gmt":"2023-04-18T06:26:02","slug":"bootpwn-breaking-secure-boot-by-experience-hitb2023ams","status":"publish","type":"product","link":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/","title":{"rendered":"BootPwn: Breaking Secure Boot by Experience"},"content":{"rendered":"<div class=\"page\" title=\"Page 4\">\n<div class=\"layoutArea\">\n<div class=\"column\">\n<p>&nbsp;<\/p>\n<hr \/>\n<div class=\"page\" title=\"Page 3\">\n<div class=\"layoutArea\">\n<h5>This 4-day BOOTPwn course is one of two Raelize&#8217;s Pwn training courses. The other is TEEPwn which will be conducted in Phuket, Thailand\u00a0 on August 2023. <span style=\"color: #993300\"><em>To find out more about this August&#8217;s 4-day TEEPwn course, <a href=\"https:\/\/sectrain.hitb.org\/courses\/teepwn-breaking-tees-by-experience-hitb2023hkt\/\"><strong>click here.<\/strong><\/a><\/em><\/span><\/h5>\n<div>\n<hr \/>\n<\/div>\n<\/div>\n<\/div>\n<div class=\"page\" title=\"Page 3\">\n<div class=\"layoutArea\">\n<div class=\"page\" title=\"Page 3\">\n<h2><strong><span style=\"color: #993300\">REGISTRATION CLOSED<\/span><\/strong><\/h2>\n<h4><strong>DATE: 17-20 April 2023<\/strong><\/h4>\n<\/div>\n<h4><strong>TIME: 09:00 to 17:00 CEST\/GMT+2<\/strong><\/h4>\n<table style=\"height: 216px\" width=\"778\">\n<tbody>\n<tr>\n<td><strong>Date<\/strong><\/td>\n<td><strong>Day<\/strong><\/td>\n<td style=\"text-align: left\"><strong>Time<\/strong><\/td>\n<td><strong>Duration<\/strong><\/td>\n<\/tr>\n<tr>\n<td>17 Apr<\/td>\n<td>Monday<\/td>\n<td>09:00 to 17:00 CEST\/GMT+2<\/td>\n<td>8 Hours \u2013 Presentations &amp; Hands-on exercises<\/td>\n<\/tr>\n<tr>\n<td>18 Apr<\/td>\n<td>Tuesday<\/td>\n<td>09:00 to 17:00 CEST\/GMT+2<\/td>\n<td>8 Hours \u2013 Presentations &amp; Hands-on exercises<\/td>\n<\/tr>\n<tr>\n<td>19 Apr<\/td>\n<td>Wednesday<\/td>\n<td>09:00 to 17:00 CEST\/GMT+2<\/td>\n<td>8 Hours \u2013 Presentations &amp; Hands-on exercises<\/td>\n<\/tr>\n<tr>\n<td>20 Apr<\/td>\n<td>Thursday<\/td>\n<td>09:00 to 17:00 CEST\/GMT+2<\/td>\n<td>8 Hours \u2013 Presentations &amp; Hands-on exercises<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<hr \/>\n<p>&nbsp;<\/p>\n<p><strong>Secure Boot is fundamental for assuring the authenticity of the Trusted Code Base (TCB) of embedded devices. Recent attacks on Secure Boot, on a wide variety of devices such as video game consoles and mobile phones, indicate that Secure Boot vulnerabilities are widespread.<\/strong><\/p>\n<p>The BootPwn experience puts you in the attacker&#8217;s seat in order to explore the attack surface of <strong>Secure Boot <\/strong>while identifying and exploiting interesting vulnerabilities applicable to real-world devices. Moreover, it\u2019s hands-on, well-guided and driven by an exciting jeopardy-style format.<\/p>\n<p>Your journey starts with achieving a comprehensive understanding of <strong>Secure Boot<\/strong>. You will learn how hardware and software are used to assure the integrity and confidentiality of the software of an embedded device. You will then use this understanding for identifying interesting vulnerabilities across the entire <strong>Secure Boot<\/strong> attack surface. You will be challenged to exploit these vulnerabilities using multiple realistic scenarios.<\/p>\n<p>All practical exercises are performed on our custom emulated attack platform which is based on publicly available code bases.<\/p>\n<p>As an attacker, you will be able to:<\/p>\n<ul>\n<li>open the device and make physical modifications<\/li>\n<li>communicate with the internal and external interface<\/li>\n<li>program the external flash of the device<\/li>\n<li>perform hardware attacks like fault injection<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<p>You will be guided towards an interesting range attack vectors and vulnerabilities specific for <strong>Secure Boot<\/strong>, which can be leveraged for novel and creative exploits, allowing you to refine your skills to a new level.<\/p>\n<p>Do not worry if your reverse engineering or exploiting skills are rusty or non-existing. You do not need to be an software security expert nor do we aim to make you one. Nevertheless, many exercises can be completed in complex way which keeps the exercises interesting to experienced students as well.<\/p>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<p>&nbsp;<\/p>\n<h5><strong>Format<\/strong><\/h5>\n<p>The BootPwn experience takes you on a 4-day journey of 8 hours where you will attend lectures and perform exciting hands-on exercises.<\/p>\n<p>You will get access to a personal VM which contains all the required tooling. It\u2019s expected that not all of the exercises are finalized within the training hours. Therefore, you will have access to this VM forever so you can continue with the exercises after the training has ended.<\/p>\n<p>&nbsp;<\/p>\n<h5><strong>Key Learning Objectives<\/strong><\/h5>\n<ul>\n<li>Gain a thorough understanding of Secure Boot on modern devices<\/li>\n<li>Identify vulnerabilities across the Secure Boot attack surface<\/li>\n<li>Gain experience with exploiting Secure Boot specific vulnerabilities<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<div class=\"page\" title=\"Page 7\">\n<div class=\"layoutArea\">\n<div class=\"column\">\n<h5><strong>The students of the BootPwn experience will get access to:<\/strong><\/h5>\n<ul>\n<li>A personal virtual machine (VM) with all the required tooling installed \u2022 access to the exercise modules and instructions<\/li>\n<li>Walk through videos for most of the hands-on exercises<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<h5><strong>To continue with the exercises after the training, you will also get access to: \u2022 a virtual machine (VM) with all the tooling installed<\/strong><\/h5>\n<ul>\n<li>Ability to run the exercise modules forever<\/li>\n<li>Ability to copy the exercise modules and instructions<\/li>\n<\/ul>\n<\/div>\n<\/div>\n<\/div>\n<p>&nbsp;<\/p>\n<h5><strong>Topics Covered<\/strong><\/h5>\n<div class=\"page\" title=\"Page 5\">\n<div class=\"layoutArea\">\n<div class=\"column\">\n<ul>\n<li><strong>Fundamentals<\/strong><br \/>\n\u25e6 Embedded devices \u25e6 Verification<br \/>\n\u25e6 Decryption<\/li>\n<li><strong>Secure Boot<\/strong><br \/>\n\u25e6 Attack surface<br \/>\n\u25e6 Real-world attacks<\/li>\n<li><strong>Identifying Secure Boot vulnerabilities <\/strong><br \/>\n\u25e6 Design information<br \/>\n\u25e6 Flash dumps<br \/>\n\u25e6 Source code<br \/>\n\u25e6 Binary code<\/li>\n<li><strong>Exploiting Secure Boot vulnerabilities<\/strong><br \/>\n\u25e6 Insecure designs<br \/>\n\u25e6 Vulnerable software<br \/>\n\u25e6 Weak cryptography<br \/>\n\u25e6 Incorrect cryptography \u25e6 Configuration issues<br \/>\n\u25e6 Incorrect checks<br \/>\n\u25e6 Insecure parsing<br \/>\n\u25e6 Vulnerable hardware<br \/>\n\u25e6 Fault injection<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<\/div>\n<\/div>\n<\/div>\n<div class=\"page\" title=\"Page 4\">\n<div class=\"layoutArea\">\n<div class=\"column\">\n<div class=\"page\" title=\"Page 3\"><\/div>\n<\/div>\n<\/div>\n<\/div>\n<hr \/>\n<div class=\"page\" title=\"Page 3\">\n<div class=\"layoutArea\">\n<h5>This 4-day BOOTPwn course is one of two Raelize&#8217;s Pwn training courses. The other is TEEPwn which will be conducted in Phuket, Thailand\u00a0 on August 2023. <span style=\"color: #993300\"><em>To find out more about this August&#8217;s 4-day TEEPwn course, <a href=\"https:\/\/sectrain.hitb.org\/courses\/teepwn-breaking-tees-by-experience-hitb2023hkt\/\"><strong>click here.<\/strong><\/a><\/em><\/span><\/h5>\n<hr \/>\n<div><\/div>\n<\/div>\n<\/div>\n<div class=\"page\" title=\"Page 3\">\n<div class=\"layoutArea\">\n<h4><strong style=\"font-size: 16px\"><span style=\"color: #993300\">\u00a0<\/span><\/strong><\/h4>\n<\/div>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>&nbsp; This 4-day BOOTPwn course is one of two Raelize&#8217;s Pwn training courses. The other is TEEPwn which will be conducted in Phuket, Thailand\u00a0 on August 2023. To find out more about this August&#8217;s 4-day TEEPwn course, click here. REGISTRATION CLOSED DATE: 17-20 April 2023 TIME: 09:00 to 17:00 CEST\/GMT+2 Date Day Time Duration 17 [&hellip;]<\/p>\n","protected":false},"featured_media":9586,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_acf_changed":false},"product_cat":[57,55,56],"product_tag":[],"class_list":{"0":"post-9587","1":"product","2":"type-product","3":"status-publish","4":"has-post-thumbnail","6":"product_cat-4-day-training","7":"product_cat-hitb2023ams","8":"product_cat-in-person","10":"first","11":"instock","12":"featured","13":"shipping-taxable","14":"purchasable","15":"product-type-simple"},"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.3 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>BootPwn: Breaking Secure Boot by Experience - HITBSecConf2023 - Amsterdam<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"BootPwn: Breaking Secure Boot by Experience - HITBSecConf2023 - Amsterdam\" \/>\n<meta property=\"og:description\" content=\"&nbsp; This 4-day BOOTPwn course is one of two Raelize&#8217;s Pwn training courses. The other is TEEPwn which will be conducted in Phuket, Thailand\u00a0 on August 2023. To find out more about this August&#8217;s 4-day TEEPwn course, click here. REGISTRATION CLOSED DATE: 17-20 April 2023 TIME: 09:00 to 17:00 CEST\/GMT+2 Date Day Time Duration 17 [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/\" \/>\n<meta property=\"og:site_name\" content=\"HITBSecConf2023 - Amsterdam\" \/>\n<meta property=\"article:modified_time\" content=\"2023-04-18T06:26:02+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/wp-content\/uploads\/sites\/18\/2022\/11\/niek.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"900\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/\",\"url\":\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/\",\"name\":\"BootPwn: Breaking Secure Boot by Experience - HITBSecConf2023 - Amsterdam\",\"isPartOf\":{\"@id\":\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/wp-content\/uploads\/sites\/18\/2022\/11\/niek.jpg\",\"datePublished\":\"2022-11-04T05:43:51+00:00\",\"dateModified\":\"2023-04-18T06:26:02+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/#primaryimage\",\"url\":\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/wp-content\/uploads\/sites\/18\/2022\/11\/niek.jpg\",\"contentUrl\":\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/wp-content\/uploads\/sites\/18\/2022\/11\/niek.jpg\",\"width\":1200,\"height\":900},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Products\",\"item\":\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/shop\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"BootPwn: Breaking Secure Boot by Experience\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/#website\",\"url\":\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/\",\"name\":\"HITBSecConf2023 - Amsterdam\",\"description\":\"#HITB2021AMS\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"BootPwn: Breaking Secure Boot by Experience - HITBSecConf2023 - Amsterdam","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/","og_locale":"en_US","og_type":"article","og_title":"BootPwn: Breaking Secure Boot by Experience - HITBSecConf2023 - Amsterdam","og_description":"&nbsp; This 4-day BOOTPwn course is one of two Raelize&#8217;s Pwn training courses. The other is TEEPwn which will be conducted in Phuket, Thailand\u00a0 on August 2023. To find out more about this August&#8217;s 4-day TEEPwn course, click here. REGISTRATION CLOSED DATE: 17-20 April 2023 TIME: 09:00 to 17:00 CEST\/GMT+2 Date Day Time Duration 17 [&hellip;]","og_url":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/","og_site_name":"HITBSecConf2023 - Amsterdam","article_modified_time":"2023-04-18T06:26:02+00:00","og_image":[{"width":1200,"height":900,"url":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/wp-content\/uploads\/sites\/18\/2022\/11\/niek.jpg","type":"image\/jpeg"}],"twitter_card":"summary_large_image","twitter_misc":{"Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/","url":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/","name":"BootPwn: Breaking Secure Boot by Experience - HITBSecConf2023 - Amsterdam","isPartOf":{"@id":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/#website"},"primaryImageOfPage":{"@id":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/#primaryimage"},"image":{"@id":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/#primaryimage"},"thumbnailUrl":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/wp-content\/uploads\/sites\/18\/2022\/11\/niek.jpg","datePublished":"2022-11-04T05:43:51+00:00","dateModified":"2023-04-18T06:26:02+00:00","breadcrumb":{"@id":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/#primaryimage","url":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/wp-content\/uploads\/sites\/18\/2022\/11\/niek.jpg","contentUrl":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/wp-content\/uploads\/sites\/18\/2022\/11\/niek.jpg","width":1200,"height":900},{"@type":"BreadcrumbList","@id":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/product\/bootpwn-breaking-secure-boot-by-experience-hitb2023ams\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/"},{"@type":"ListItem","position":2,"name":"Products","item":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/shop\/"},{"@type":"ListItem","position":3,"name":"BootPwn: Breaking Secure Boot by Experience"}]},{"@type":"WebSite","@id":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/#website","url":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/","name":"HITBSecConf2023 - Amsterdam","description":"#HITB2021AMS","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"}]}},"_links":{"self":[{"href":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/wp-json\/wp\/v2\/product\/9587"}],"collection":[{"href":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/wp-json\/wp\/v2\/product"}],"about":[{"href":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/wp-json\/wp\/v2\/types\/product"}],"replies":[{"embeddable":true,"href":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/wp-json\/wp\/v2\/comments?post=9587"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/wp-json\/wp\/v2\/media\/9586"}],"wp:attachment":[{"href":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/wp-json\/wp\/v2\/media?parent=9587"}],"wp:term":[{"taxonomy":"product_cat","embeddable":true,"href":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/wp-json\/wp\/v2\/product_cat?post=9587"},{"taxonomy":"product_tag","embeddable":true,"href":"https:\/\/conference.hitb.org\/hitbsecconf2023ams\/wp-json\/wp\/v2\/product_tag?post=9587"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}